What is SSO?
Single sign-on (SSO) allows your users to log in to the online academy using an external account. In this article, we will discuss what to configure in order to activate SSO integration with Okta. For further information about SSO in general, please refer to this article.
In order to utilize SSO, users must already be added to the online academy. SSO does not create user accounts.
How do I configure SSO?
We will provide instructions on how to set up SSO. Please consult Okta’s support for the precise settings.
Step-by-step guide for creating credentials in Okta
To set up SSO via Okta, you can follow the steps below. This Okta support article can also assist you in the process.
Obtain our Metadata URL using the following link: http://saml2.hubper.co/saml/metadata
In our metadata, you will find our entityID. This needs to be entered at the Audience URL in the Okta SAML integration.
Configure the attributes to match Rakoo:
firstname = user.firstname
lastname = user.lastname
email = user.email
Next, you will need the credentials from Okta to configure the integration into your online academy. You can find this metadata at the 'sign on' tab at the SAML integration in Okta.
Identity Provider Single sign-on URL
It may look like this (example): https://klantnaam.okta-emea.com/app/iyk5twfdkaYFwYiP29b7/sso/saml/metadata
Audience URL
It may look like this (example): http://www.okta.com/iyk5twfdkaYFwYiP29b7
Optional: Certificate that we can add to the connection
X.509 Certificate
Step-by-step guide for creating the integration in the online academy
You can manage your integrations on the integrations page. You can find this page on the left side of the menu bar:
Next, you can select Okta (SAML) at ‘Single sign-on’. This will take you to the settings page.
Here, you can select ‘Add’.
Thereafter, you can enter the credentials obtained from Okta.
At ‘Integration status’, you can indicate whether the integration is activated or not.
The ‘Login with “button" option allows you to decide whether a button should also be displayed in the login screen. Is this option disabled? Then, users can only log in through an external method via SSO (e.g., intranet).
Save the changes to activate the integration.
Are you having trouble with the setup? Please contact support.